I have an ISE 2.7 cluster with 4 nodes. 2 each of PSN and PAN. each of the 4 nodes has a stand-alone self-signed pxgrid certificate on it that expires on 3/20/2024. We do not use pxgrid on that cluster, nor is the cluster configured for anything pxgr...
Is it possible to configure an email to quarantine and drop if it triggers a DLP violation?I am looking in the admin guide and only see the quarantine option for if you want to deliver the message.Thanks!
OK, so I have 2 firepower 1200's running the same s/w, the same configuration, everything is the same (apart from the specific vpn config). I have a customer with a single end point and from each firepower I have a VPN IKEv2 point to point link. On t...
The Cisco Document Team has posted an article. This document provides a collection of troubleshooting documents created and maintained by TAC engineers to detect common issues Know of something that needs documenting? Share a n...
Hi Guys,We're having issues with our RADIUS authentication. We just keep getting login failed when trying to connect to our VPN. We've run an authentication test in ASDM and that works fine so not sure where our issue lies. I've pulled out our config...
hello all ,recently i tried to configure VPN site to site with certificate authentication type, i got the certificate signed by a third party autority , and when i did the debugs i got this log :CRYPTO_PKI: bitValue of KEY_USAGE = a0PKI[7]: CRYPTO_PK...
Hello Guy, Do anyone know how to check the existing the config-register on the ASA firewall please.when one of my HA firewalls reboots it goes to ROMON mode and I have to manually do boot to boot it up.How can i solve this issue please?I'm using ASA ...
Hi, sometimes in our 2.3 ISE Deployment replication errors show up in main dashboard Here is the last one repeated for each not primary node "Error while synchronizing EDF objects. Please re-sync the node Please re-sync the node". Anyway in Syst...
Bonjour à tous, Je suis sur un projet d'intégration de Cisco DUO pour une banque libanaise, j'ai déjà réussi à configurer le MFA pour fortigate SSL VPN, maintenant j'ai un problème pour configurer le MFA pour une solution PAM qui est "Safeguard for ...
I am trying to get my head around this to make sure i've understood this correctly. Hopefully someone will be able to clarify it for me. 1. As per the below image, I can see that Balanced and security is enabled as a default for NAP in the default...
Using the Api for Authenticated users list : https://{ISE-MNT}/admin/API/mnt/Session/AuthList/{START_TIME}/{END_TIME}I am able to fetch data of active sessions that are connected throughout the time period of 30 days whereas I also want to fetch d...
We have an export repository configured for our Radius/Tacacs Data under System/Maintenance/Operational Data Purging which leads ISE to write many small .tar.gpg files on our repository server.I would now like to run reports from this data but I am n...
I have almost completed the build of the 3.2, what I observe is the following:- in 2.7, the "Sponsor portal URL" is the classic 443 (the link that ISE offers to quickly check it out), in the setup page TCP 9445 is specified. Hence ISE sends the clien...
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: